IBM solidDB Format String Vulnerability and Multiple Denial of Service Vulnerabilities
BID:28468
Info
IBM solidDB Format String Vulnerability and Multiple Denial of Service Vulnerabilities
| Bugtraq ID: | 28468 |
| Class: | Unknown |
| CVE: |
CVE-2008-1706 CVE-2008-1707 CVE-2008-1708 CVE-2008-1705 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 26 2008 12:00AM |
| Updated: | Jul 06 2016 02:17PM |
| Credit: | Luigi Auriemma |
| Vulnerable: |
IBM solidDB 6.0.10 .18 |
| Not Vulnerable: | |
Discussion
IBM solidDB Format String Vulnerability and Multiple Denial of Service Vulnerabilities
IBM solidDB is prone to a format-string vulnerability affecting the logging function and three denial-of-service vulnerabilities.
Attackers can exploit these issues to execute arbitrary code or to deny service to legitimate users.
solidDB 06.00.1018 is vulnerable; other versions may also be affected.
IBM solidDB is prone to a format-string vulnerability affecting the logging function and three denial-of-service vulnerabilities.
Attackers can exploit these issues to execute arbitrary code or to deny service to legitimate users.
solidDB 06.00.1018 is vulnerable; other versions may also be affected.
Exploit / POC
IBM solidDB Format String Vulnerability and Multiple Denial of Service Vulnerabilities
The following exploit code is available.
The following exploit code is available.
Solution / Fix
IBM solidDB Format String Vulnerability and Multiple Denial of Service Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
IBM solidDB Format String Vulnerability and Multiple Denial of Service Vulnerabilities
References:
References:
- solidDB Homepage (IBM)
- Multiple vulnerabilities in solidDB 06.00.1018 (Luigi Auriemma
)